Does T-Mobile Austria in fact store customers’ passwords in clear text @tmobileat? @PWTooStrong @Telekom_hilfthttps://twitter.com/SeloX_AUT/status/981406875811008513 …
-
-
Thanks for your reply Andrea! Storing cleartext passwords in a database is a naughty thing to do. http://plaintextoffenders.com/faq/devs What can we do to get your devs to fix that?
-
Hi
@c_pellegrino, I really do not get why this is a problem. You have so many passwords for evey app, for every mail-account and so on. We secure all data very carefully, so there is not a thing to fear. ^Käthe -
Well, what if your infrastructure gets breached and everyone’s password is published in plaintext to the whole wide world?
-
@Korni22 What if this doesn't happen because our security is amazingly good? ^Käthe -
Bad news for you Käthe, nobody’s security is that good. No, not even yours. It’s not that I say you are 100% getting hacked - what if an employee accesses the database directly?
-
@Korni22 Excuse me? Do you have any idea how telecommunication companies work? Do you know anything about our systems? But I'm glad you have the time to share your view with us. ^Käthe -
Well, I do since I worked for
@deutschetelekom, but thanks for asking. 3 years of something that’s called „Ausbildung“ a bit more as contractor. -
@Korni22 So, you never worked for us in Austria though. But thank you very much for sharing your opinion. ^Käthe - Nog 8 antwoorden
Nieuw gesprek -
-
-
Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
you will like EU General Data Protection Regulation ...
Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
.
@TMobile get your pr department on call, you're about to have a shit storm on your hands. PLAIN TEXT PASSWORDS?? Not even a little ok, please tell me there's a communication breakdown going on hereBedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
Whooaaaa....
@troyhunt come take a look at this thread....Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
may I use the
@tmobileat responses here as part of my undergraduate exam in the security module of the basic operating systems course? e.g., 1 point for each failure identied - Nog 1 antwoord
Nieuw gesprek -
-
-
Oh no.
@troyhunt plaintext password storage and partial plaintext view for a company in Austria. 99% sure that wouldn't even comply with GDPR.Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
Clear text??? Really? And After the Talk Talk's breach? You're SURE you can't be penetrated? Because that tweet might just have painted a target on your systems from people either just looking to prove you wrong, or knowing there is easy password pickings. Encrypt now please!
Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
Tagging
@briankrebs. He's pretty good with security, and I think he'd be horrified that passwords are stored plaintext in a database.Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
Is Tmo storing passwords in the US this way too? Other than being an awful practice, this is probably a violation some of your auditors may want to know about.
Bedankt, Twitter gebruikt dit om je tijdlijn te verbeteren. Ongedaan makenOngedaan maken
-
-
-
I think the CM who maintains this account is fired. So much misunderstanding and nonsense unified at the same time. Thanks for this funny and sad moment
-
Probably fired, but not for being ignorant but for revealing the low standards and privacy invading policies
Einde van gesprek
Nieuw gesprek -
Het laden lijkt wat langer te duren.
Twitter is mogelijk overbelast of ondervindt een tijdelijke onderbreking. Probeer het opnieuw of bekijk de Twitter-status voor meer informatie.